For engineers and security teams driving fast and secure software supply chains
☆87Feb 6, 2023Updated 3 years ago
Alternatives and similar repositories for blueprint-securesoftwarepipeline
Users that are interested in blueprint-securesoftwarepipeline are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Container image provenance spec that allows tracing CVEs detected in registry images back to a CVE's source of origin.☆45Oct 30, 2023Updated 2 years ago
- Go client SDK and command line utility designed to simplify integrations by automating key generation and certificate enrollment using Ve…☆104Updated this week
- Deprecated, see VenafiPS project. PowerShell module to access the features of Venafi Trust Protection Platform REST API☆18Nov 29, 2021Updated 4 years ago
- A Kubewarden Policy that verifies all the signatures of the container images referenced by a Pod☆11Jan 20, 2026Updated 4 months ago
- AWS Cloud Quest: Cloud Practitioner☆24Apr 8, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Example repository that demonstrates a supply chain security workflow using Syft, Grype, Cosign☆12Sep 15, 2021Updated 4 years ago
- Use ORT in your GitLab pipelines☆15Nov 11, 2025Updated 7 months ago
- Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts☆19Jun 3, 2026Updated last week
- AWS managed IAM policies☆16Mar 24, 2022Updated 4 years ago
- SSH Pubkey Registry☆23Jul 8, 2017Updated 8 years ago
- ☆31Updated this week
- ☆13Oct 27, 2020Updated 5 years ago
- Kubernetes tools in a "distroless" container☆13Oct 30, 2023Updated 2 years ago
- go-ima is a tool that checks if a file has been tampered with. It is useful in ensuring integrity in CI systems☆14Sep 28, 2023Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Overview of philips-labs helm charts☆16Jun 3, 2026Updated last week
- Sample application showcasing the use of Dapr to build microservices based apps☆15Feb 4, 2026Updated 4 months ago
- fatt tries to find any purl in your project by looking at predefined fields in the supported packages. These fields describe using a purl…☆11May 11, 2026Updated last month
- ☆259Updated this week
- ☆18Dec 20, 2025Updated 5 months ago
- AMD SEV-SNP rust utils☆17May 13, 2025Updated last year
- SLSA level 3 action☆11Apr 26, 2024Updated 2 years ago
- Go implementation of witness☆49Updated this week
- A documentation and tracking project with the goal of making package management systems more secure.☆52Mar 5, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- An example repo demonstrating keyless signing with Github Actions☆11May 24, 2022Updated 4 years ago
- A kubectl plugin to run kubectl macro that wraps a set of kubectl calls into one command to be run many times.☆11Jun 28, 2021Updated 4 years ago
- ☆13Apr 24, 2023Updated 3 years ago
- Witness Examples☆12Feb 27, 2024Updated 2 years ago
- A CLI used to work with the Wolfi OSS project☆72Updated this week
- ☆73Jun 3, 2026Updated last week
- Manticore Ransomware Emulation - Educational Purpose Only!☆10Aug 2, 2020Updated 5 years ago
- Friends of in-toto! A place to record integrations and adoptions of the in-toto specification.☆21Apr 6, 2026Updated 2 months ago
- GitHub actions and GitLab CI templates run various vulnerability scanners, upload the results into SecObserve and make the results of the…☆29Updated this week
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Spec files and code to use for AWS CodeCommit, CodeDeploy, and CodePipeline☆10Apr 16, 2021Updated 5 years ago
- Sharing software supply chain security open source projects☆54Dec 19, 2022Updated 3 years ago
- Venafi PKI Secrets Engine plugin for HashiCorp Vault that enables certificate enrollment using Venafi machine identity services.☆58Jun 5, 2026Updated last week
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆109Oct 13, 2025Updated 8 months ago
- Create a Lean Canvas out of a markdown list☆13May 25, 2025Updated last year
- ☆11Updated this week
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆615Feb 10, 2026Updated 4 months ago